Skip site navigation (1)Skip section navigation (2)
Date:      Wed, 28 Jul 2004 09:27:18 -0500
From:      "Hauan, David" <david.hauan@fairchild.af.mil>
To:        <dgw@liwest.at>
Cc:        questions@freebsd.org
Subject:   RE: Problems after IP change
Message-ID:  <59FD5336D1B1FA40AF6DDD241D8DBAC68C1376@amcw2ms517.amc.ds.af.mil>

next in thread | raw e-mail | index | archive | help


> -----Original Message-----
> From: Steve Bertrand [mailto:iaccounts@ibctech.ca]
> Sent: Wednesday, July 28, 2004 7:22 AM
> To: dgw@liwest.at
> Cc: questions@freebsd.org
> Subject: Re: Problems after IP change
>=20
>=20
> > On Wednesday 28 July 2004 14:03, Steve Bertrand wrote:
> >> > Hi all!
> >> >
> >> > I recently got a new IP on my outside interface, and I=20
> replaced the
> >> old
> >> > IP with the new one in my IPFW ruleset, and restarted natd.
> >> > Now everything was alright until my network clients (on=20
> the inside
> >> > interface)
> >> > started complaining that they can't connect to remote=20
> servers. Ping
> >> still
> >> > works, but they can't fetch their mail or surf the net.
> >> > It looks like something is wrong with my firewall, but I changed
> >> nothing
> >> > but
> >> > the old address.
> >> > Are there other processes that need to be restarted?
> >>
> >> Did you actually change the IP on the interface itself? If not:
> >>
> >> edit /etc/rc.conf and change the IP/Netmask, then:
> >>
> >> # /etc/netstart
> >
> > Yes, the IP was changed. I ran /etc/netstart, but it didn't=20
> help. As I
> > said,
> > ping works as normal, and the packet sniffer shows normal=20
> TCP connections
> > and
> > there are even answers from the remote servers, so I really=20
> have no clue
> > what
> > could be wrong. I don't think it would do this with a wrong IP.
> >
> >
>=20
> Do you have an ``alias_address'' statement in your natd.conf file?
>=20
> Usually, you will specify the interface that natd operates=20
> on, but in some
> situations, some will specify an alias address instead.
>=20
> Check the file, and ensure that you are not aliasing the old address.
>=20
> Steve

Can you ping outside addresses from the inside clients?
Is the FW box running dhcp?
If not did you change the gateway on the inside clients?

Just a thought.

dave=20



Want to link to this message? Use this URL: <https://mail-archive.FreeBSD.org/cgi/mid.cgi?59FD5336D1B1FA40AF6DDD241D8DBAC68C1376>